All Apps and Add-ons

VCuser permissions in Splunk VMware App

dshakespeare_sp
Splunk Employee
Splunk Employee

Do we have any information regarding what permission the vcuser account needs to have in Splunk VMWare app?

When granting the vcuser local admin rights (the one used in the engine.template file on the FA vm) everything works properly.

For security reasons customer wishes to revolke local admin rights and grant specific permissions to a user without elevated rights.

Are the permissions documented anywhere?

The document at http://docs.splunk.com/Documentation/VMW/latest/Install/CreatevCenterserviceaccount, but the page does not appear to explain this.

Customer can only get this to work when user has local admin rights.

Customer also like to know what exactly is checked with that script on the vcenter server with the vcuser.

Customer is also looking a description what correlation is between the vcenter server and the esxi hosts. Their understanding is the hosts use completely different credentials so even the vcenter server has some permission problem, the esxi hosts should send data.

0 Karma

bbingham
Builder

A full list of requirements for the virtual center user account can be found here:

http://docs.splunk.com/Documentation/VMW/latest/Install/CreatevCenterserviceaccounts

the link you supplied is missing an "s"

http://docs.splunk.com/Documentation/VMW/latest/Install/CreatevCenterserviceaccount

If there was a miss-print in our documentation, please let me know where it is located so we can get it fixed!

0 Karma
Get Updates on the Splunk Community!

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...

Announcing the Migration of the Splunk Add-on for Microsoft Azure Inputs to ...

Announcing the Migration of the Splunk Add-on for Microsoft Azure Inputs to Officially Supported Splunk ...